A recently uncovered, active campaign called “Duri” makes use of HTML smuggling to deliver malware.
Source: Threadpost